CVE-2018-12979: Medium severity wago pfc firmware vulnerability
An issue was discovered on WAGO e!DISPLAY 762-3000 through 762-3003 devices with firmware before FW 02. Weak permissions allow an authenticated user to overwrite critical files by abusing the unrestricted file upload in the WBM.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-12979?
CVE-2018-12979 has been assessed with a significant severity due to weak permissions allowing file overwrites.
How do I fix CVE-2018-12979?
To mitigate CVE-2018-12979, upgrade the firmware of WAGO e!DISPLAY devices to version FW 02 or later.
What type of devices are affected by CVE-2018-12979?
CVE-2018-12979 affects the WAGO e!DISPLAY 762-3000 through 762-3003 devices with firmware prior to version FW 02.
What vulnerability does CVE-2018-12979 exploit?
CVE-2018-12979 exploits weak file permissions that allow authenticated users to upload files unrestrictedly.
Can CVE-2018-12979 be exploited remotely?
Yes, CVE-2018-12979 can potentially be exploited by authenticated users with access to the affected WAGO e!DISPLAY devices.